SlideShare a Scribd company logo
© AKAMAI - EDGE 2017
User and API Management
Maroo Lieuw
© AKAMAI - EDGE 2017
Getting Started with User and API Management
Agenda
• Overview – Today & Future
• Access and Permissions Model
• Use Cases
© AKAMAI - EDGE 2017
Where do I go?
© AKAMAI - EDGE 2017
Where do I go?
© AKAMAI - EDGE 2017
Capabilities : Manage SSO with SAML
Feature Today November 2017
HOSTNAME *.luna-sp.com control.akamai.com
CERT Expiry 2 years 2 years
Attribute userid configurable
Message Signing SHA-1 SHA-256
Active IDP per Account 1 Unlimited
© AKAMAI - EDGE 2017
Capabilities : Manage IP Whitelist
Feature Today November 2017
IP Restrict Login Page Direct Login only Direct + New SSO
IP Restrict API Calls NOT Supported NOT Supported
© AKAMAI - EDGE 2017
Capabilities : Manage Users & Groups
Feature Today January 2018
Custom Password Policy Yes, by form Yes, by form
2FA Optional Optional & Mandatory
2FA Remember Me Yes, by default Configurable
Custom Session Timeout Per User, default 30 min Account Max Configurable
Custom Auto-Logout Per User, default 18 hours Account Max Configurable
© AKAMAI - EDGE 2017
Capabilities : Manage Users & Groups
© AKAMAI - EDGE 2017
Capabilities : Manage Users & Groups
New Wizard
January 2018
Choose to send Welcome Email
© AKAMAI - EDGE 2017
Capabiltiies : Manage APIs
Maroo@Lieuw
Feature Today 1H 2018
OPEN API Rotate Credentials Create API Clients
Credential Creation API Owner only By permission
Transfer API Client Same Access
(Exact Role & Groups)
By Permission to Anyone
© AKAMAI - EDGE 2017
Capabilities: Contact Management / Super User
© AKAMAI - EDGE 2017
What is Identity Management
© AKAMAI - EDGE 2017
Identity and Access Management
Treat an API Client as a person
© AKAMAI - EDGE 2017
What is the Access Control Model?
© AKAMAI - EDGE 2017
What are Groups and Contracts?
© AKAMAI - EDGE 2017
Access
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
• Property Manager
• The group where you want to property to live,
• CP codes, and
• Edge hostnames.
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
• Standard Roles (Admin, Editor, Publisher, Viewer)
• Admin is NOT a Super or Root Admin
Role Description
Admin May manage users and groups; some configuration
and publishing related tasks
Editor May manage configuration and publishing tasks
Publisher May purge content, upload content and video
streams
Viewer View access
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
• Clone Editor Role
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
• Access Model (Account, Contract)
• Permissions Model (User, Role, Group)
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
© AKAMAI - EDGE 2017
Use Case: Developer Access To Edit Configuration
Maroo@Lieuw
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
API Client Creation:
Default selects your groups
and roles
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Explore API Catalog
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Filter API Catalog to APIs you
want
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
API Client may create new credentials for
itself and update token expiry date
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Only API Owner may create credentials
© AKAMAI - EDGE 2017
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Coming Soon in Q1 2018
Unified Tabs
Visible Based On Permissions
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Create New
Users
API Clients
© AKAMAI - EDGE 2017
Grow revenue opportunities with fast, personalized
web experiences and manage complexity from peak
demand, mobile devices and data collection.
Simplify Lifecycle Management
Quickly see User and API Clients
Transfer API Clients to new owners
© AKAMAI - EDGE 2017
Upcoming Features
FEATURE DESCRIPTION
Lock / Unlock User Immediately disable/ enable ability to login to Luna but not affect API Clients
Lock / Unlock API Client Immediately disable / enable API Client’s access to APIs
Settings Ability to predefine settings common to all users
Mandatory 2FA Ability to mandate all users use 2FA for authentication
Optional Creation Email Create users with no email notifications being sent
Identity Management API An API to automate User and API lifecycle events

More Related Content

PDF
How Websites go Serverless - WebSummit Lisbon 2018
PPTX
API Services: Building State-of-the-Art APIs
PDF
Redefine Omni-Channel Retailing - Harness the Power of APIs
PPTX
Transition from SOA to APIs for the App Economy - Bending the Spoon
PDF
Achieving Microservices Maturity
PPTX
Apigee Product Roadmap Part 2
PPTX
Microservices Done Right: Key Ingredients for Microservices Success
PPTX
Adapt or Die Sydney - 5 Things Developers Should Know About Serverless
How Websites go Serverless - WebSummit Lisbon 2018
API Services: Building State-of-the-Art APIs
Redefine Omni-Channel Retailing - Harness the Power of APIs
Transition from SOA to APIs for the App Economy - Bending the Spoon
Achieving Microservices Maturity
Apigee Product Roadmap Part 2
Microservices Done Right: Key Ingredients for Microservices Success
Adapt or Die Sydney - 5 Things Developers Should Know About Serverless

What's hot (17)

PPTX
Microservices: Why Should Businesses Care?
PPTX
Webinar: Automation of Test Automation
PDF
London Adapt or Die: Opening Keynot
PPTX
What is APIGEE? What are the benefits of APIGEE?
PPTX
Php classified real estate property script by eicra soft
PDF
How Apigee Api Management Platform Helps with Digital Excellence
PDF
How Secure Are Your APIs?
PPTX
Cost optimized logging using API Gateway, SQS and Elastic Search
PDF
Aws cost optimized logging using api gateway, sqs and elastic search
PPTX
What's New in API Connect & DataPower Gateway in 1H 2018
PPTX
API as-a-Product with Azure API Management (APIM)
PPTX
How to Build an Effective API Security Strategy
PPTX
Api design tips
PPTX
Azure API Management
PDF
Websites go Serverless - ILDevCon
PDF
Distributed Digital Manufacturing – How APIs are Powering the Next Industrial...
PDF
INTERFACE, by apidays - Building contextualized API specifications by Boris ...
Microservices: Why Should Businesses Care?
Webinar: Automation of Test Automation
London Adapt or Die: Opening Keynot
What is APIGEE? What are the benefits of APIGEE?
Php classified real estate property script by eicra soft
How Apigee Api Management Platform Helps with Digital Excellence
How Secure Are Your APIs?
Cost optimized logging using API Gateway, SQS and Elastic Search
Aws cost optimized logging using api gateway, sqs and elastic search
What's New in API Connect & DataPower Gateway in 1H 2018
API as-a-Product with Azure API Management (APIM)
How to Build an Effective API Security Strategy
Api design tips
Azure API Management
Websites go Serverless - ILDevCon
Distributed Digital Manufacturing – How APIs are Powering the Next Industrial...
INTERFACE, by apidays - Building contextualized API specifications by Boris ...
Ad

Similar to Getting Started with User and API Management Features (20)

PPTX
Configs, Configs, Everywhere! (Actually, Let's Simplify All Those Configs)
PPTX
PPTX
Confronting API Security in the Brave New Open Banking Era
PPTX
Self-Serviceability- Taking it Up a Notch!
PDF
Optimizing your API to Perform at Scale
PPTX
EdgeWorkers: Enabling Autonomous, Developer Friendly Programming at the Edge
PPTX
Deconstructing API Security
PPTX
Cloud Delivery: The Path from Simple to Sophisticated
PPTX
From Development to Deployment - Use Akamai to Facilitate Workflow Automation
PPTX
Cloudlets and DevOps - A Dangerously Powerful Combination to Extend Capabilit...
PDF
Akamai Tech day Amsterdam 2019
PDF
Takeaways from API Security Breaches Webinar
PDF
API Design Essentials - Akana Platform Overview
PDF
Akamai for Dev Ops Current Capabilities - Atlanta DevOps World Tour
PDF
Edge 2014: Increasing Control with Property Manager with eBay
PDF
How to Counter Cybersecurity Attacks - Trust No One
PPTX
Luna and Third Party Tools for Troubleshooting Web Application Issues
PDF
Edge 2016 service workers and other front end techniques
PPTX
Enterprise Access Control Patterns for Rest and Web APIs
PPTX
apidays LIVE LONDON - API Lifecycle Management - Avoiding Breaches By Securin...
Configs, Configs, Everywhere! (Actually, Let's Simplify All Those Configs)
Confronting API Security in the Brave New Open Banking Era
Self-Serviceability- Taking it Up a Notch!
Optimizing your API to Perform at Scale
EdgeWorkers: Enabling Autonomous, Developer Friendly Programming at the Edge
Deconstructing API Security
Cloud Delivery: The Path from Simple to Sophisticated
From Development to Deployment - Use Akamai to Facilitate Workflow Automation
Cloudlets and DevOps - A Dangerously Powerful Combination to Extend Capabilit...
Akamai Tech day Amsterdam 2019
Takeaways from API Security Breaches Webinar
API Design Essentials - Akana Platform Overview
Akamai for Dev Ops Current Capabilities - Atlanta DevOps World Tour
Edge 2014: Increasing Control with Property Manager with eBay
How to Counter Cybersecurity Attacks - Trust No One
Luna and Third Party Tools for Troubleshooting Web Application Issues
Edge 2016 service workers and other front end techniques
Enterprise Access Control Patterns for Rest and Web APIs
apidays LIVE LONDON - API Lifecycle Management - Avoiding Breaches By Securin...
Ad

More from Akamai Developers & Admins (20)

PDF
Mitigate Security Threats with SIEM
PDF
Manage Your Akamai-as-Code with Terraform
PDF
Akamai-as-Code with The Washington Post
PDF
Set up a Development Environment in 5 Minutes
PDF
AWS re:invent: The secret to building and delivering amazing apps at scale
PDF
AWS re:invent talk: The secrets to building and delivering amazing apps at scale
PDF
10 things you can do at the edge
PDF
How the internet is reshaping our lives
PDF
Velocity + Fluent 2018: API Performance
PDF
Fluent 2018: Measuring What Matters
PDF
Fluent 2018: When third parties stop being polite... and start getting real
PDF
Integrating Security Controls into the Development and Delivery Pipeline
PDF
Automation at the Edge
PDF
Akamai Developer General Session
PDF
Akamai Admin General Session
PPTX
Provision Your Own Apple TV channel with MSL 4.x
PPTX
Managing the IoT OTA via the Akamai OPEN APIs and Google Sheets
PPTX
Integrating All Akamai Media Client Solutions with AMP
PPTX
Making Virtual Reality Real: 4K VR/AR Encoding and Global Delivery
PPTX
The Road to Ultra Low Latency
Mitigate Security Threats with SIEM
Manage Your Akamai-as-Code with Terraform
Akamai-as-Code with The Washington Post
Set up a Development Environment in 5 Minutes
AWS re:invent: The secret to building and delivering amazing apps at scale
AWS re:invent talk: The secrets to building and delivering amazing apps at scale
10 things you can do at the edge
How the internet is reshaping our lives
Velocity + Fluent 2018: API Performance
Fluent 2018: Measuring What Matters
Fluent 2018: When third parties stop being polite... and start getting real
Integrating Security Controls into the Development and Delivery Pipeline
Automation at the Edge
Akamai Developer General Session
Akamai Admin General Session
Provision Your Own Apple TV channel with MSL 4.x
Managing the IoT OTA via the Akamai OPEN APIs and Google Sheets
Integrating All Akamai Media Client Solutions with AMP
Making Virtual Reality Real: 4K VR/AR Encoding and Global Delivery
The Road to Ultra Low Latency

Recently uploaded (20)

PDF
Electronic commerce courselecture one. Pdf
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Empathic Computing: Creating Shared Understanding
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Approach and Philosophy of On baking technology
PDF
Encapsulation theory and applications.pdf
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PPT
Teaching material agriculture food technology
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
cuic standard and advanced reporting.pdf
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Machine learning based COVID-19 study performance prediction
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Electronic commerce courselecture one. Pdf
Spectral efficient network and resource selection model in 5G networks
Empathic Computing: Creating Shared Understanding
NewMind AI Weekly Chronicles - August'25 Week I
Mobile App Security Testing_ A Comprehensive Guide.pdf
Unlocking AI with Model Context Protocol (MCP)
Approach and Philosophy of On baking technology
Encapsulation theory and applications.pdf
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
The Rise and Fall of 3GPP – Time for a Sabbatical?
Teaching material agriculture food technology
20250228 LYD VKU AI Blended-Learning.pptx
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
cuic standard and advanced reporting.pdf
Reach Out and Touch Someone: Haptics and Empathic Computing
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Chapter 3 Spatial Domain Image Processing.pdf
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Machine learning based COVID-19 study performance prediction
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf

Getting Started with User and API Management Features

  • 1. © AKAMAI - EDGE 2017 User and API Management Maroo Lieuw
  • 2. © AKAMAI - EDGE 2017 Getting Started with User and API Management Agenda • Overview – Today & Future • Access and Permissions Model • Use Cases
  • 3. © AKAMAI - EDGE 2017 Where do I go?
  • 4. © AKAMAI - EDGE 2017 Where do I go?
  • 5. © AKAMAI - EDGE 2017 Capabilities : Manage SSO with SAML Feature Today November 2017 HOSTNAME *.luna-sp.com control.akamai.com CERT Expiry 2 years 2 years Attribute userid configurable Message Signing SHA-1 SHA-256 Active IDP per Account 1 Unlimited
  • 6. © AKAMAI - EDGE 2017 Capabilities : Manage IP Whitelist Feature Today November 2017 IP Restrict Login Page Direct Login only Direct + New SSO IP Restrict API Calls NOT Supported NOT Supported
  • 7. © AKAMAI - EDGE 2017 Capabilities : Manage Users & Groups Feature Today January 2018 Custom Password Policy Yes, by form Yes, by form 2FA Optional Optional & Mandatory 2FA Remember Me Yes, by default Configurable Custom Session Timeout Per User, default 30 min Account Max Configurable Custom Auto-Logout Per User, default 18 hours Account Max Configurable
  • 8. © AKAMAI - EDGE 2017 Capabilities : Manage Users & Groups
  • 9. © AKAMAI - EDGE 2017 Capabilities : Manage Users & Groups New Wizard January 2018 Choose to send Welcome Email
  • 10. © AKAMAI - EDGE 2017 Capabiltiies : Manage APIs Maroo@Lieuw Feature Today 1H 2018 OPEN API Rotate Credentials Create API Clients Credential Creation API Owner only By permission Transfer API Client Same Access (Exact Role & Groups) By Permission to Anyone
  • 11. © AKAMAI - EDGE 2017 Capabilities: Contact Management / Super User
  • 12. © AKAMAI - EDGE 2017 What is Identity Management
  • 13. © AKAMAI - EDGE 2017 Identity and Access Management Treat an API Client as a person
  • 14. © AKAMAI - EDGE 2017 What is the Access Control Model?
  • 15. © AKAMAI - EDGE 2017 What are Groups and Contracts?
  • 16. © AKAMAI - EDGE 2017 Access
  • 17. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration • Property Manager • The group where you want to property to live, • CP codes, and • Edge hostnames.
  • 18. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration • Standard Roles (Admin, Editor, Publisher, Viewer) • Admin is NOT a Super or Root Admin Role Description Admin May manage users and groups; some configuration and publishing related tasks Editor May manage configuration and publishing tasks Publisher May purge content, upload content and video streams Viewer View access
  • 19. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration • Clone Editor Role
  • 20. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration • Access Model (Account, Contract) • Permissions Model (User, Role, Group)
  • 21. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration
  • 22. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration
  • 23. © AKAMAI - EDGE 2017 Use Case: Developer Access To Edit Configuration Maroo@Lieuw
  • 24. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. API Client Creation: Default selects your groups and roles
  • 25. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Explore API Catalog
  • 26. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Filter API Catalog to APIs you want
  • 27. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. API Client may create new credentials for itself and update token expiry date
  • 28. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Only API Owner may create credentials
  • 29. © AKAMAI - EDGE 2017
  • 30. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Coming Soon in Q1 2018 Unified Tabs Visible Based On Permissions
  • 31. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Create New Users API Clients
  • 32. © AKAMAI - EDGE 2017 Grow revenue opportunities with fast, personalized web experiences and manage complexity from peak demand, mobile devices and data collection. Simplify Lifecycle Management Quickly see User and API Clients Transfer API Clients to new owners
  • 33. © AKAMAI - EDGE 2017 Upcoming Features FEATURE DESCRIPTION Lock / Unlock User Immediately disable/ enable ability to login to Luna but not affect API Clients Lock / Unlock API Client Immediately disable / enable API Client’s access to APIs Settings Ability to predefine settings common to all users Mandatory 2FA Ability to mandate all users use 2FA for authentication Optional Creation Email Create users with no email notifications being sent Identity Management API An API to automate User and API lifecycle events